NetSpeek Windows Runtime Service Firewall Configuration Guide
This document is a step-by-step guide for configuring a Windows Firewall inbound rule to allow communication between the NetSpeek Edge VM and the NetSpeek Windows Runtime Service (NWRS). This procedure creates a program-specific firewall exception for the BackgroundWorker process, ensuring the relevant NetSpeek solution components can connect. This guide is a companion document to NetSpeek Windows Runtime Service Installation Guide for Individual Devices.
Important Change Notification
As of NWRS version <x.y version here> the install wizard will configure the necessary inbound rule in Windows Firewall automatically. If that process has completed successfully, the steps in this guide are unnecessary, except perhaps as a verification procedure to confirm the relevant rule is in place.
Note also that prior to version <x.y version here> the NWRS listened exclusively on port TCP 443 – the install wizard now includes the ability to specify an admin-defined listening port, if the default TCP 443 port is used by another service or application in the Windows OS. For details, see NetSpeek Windows Runtime Service Installation Guide for Individual Devices.
Note
This document should not be be confused with https://docs.netspeek.ai/onboarding-and-platform-usage/network-and-firewall-requirements/ which describes network connectivity requirements at a holistic NetSpeek-platform level. This guide is specifically about firewall configurations within the Windows OS of a NWRS-orchestrated device.
Step 1. Open Windows Firewall
- Click Start
- Search for Windows Defender Firewall with Advanced Security and select “Run as administrator”
- You should be met with the following window:

Step 2. Create a rule for the NWRS BackgroundWorker
- Click Inbound Rules
- Then click New Rule as depicted below:

- Select the Rule Type: Program and Click Next.

- Select This program path: on the ensuing screen, then enter the path to the NWRS BackgroundWorker executable:
%ProgramFiles%\NetSpeek\NetSpeek Runtime Service\BackgroundWorker.exe

- Select the Action to Allow the connection and click Next.

- Select your desired application of this rule (configuration options shown below), and Click Next

- Name the Rule, for example: NetSpeek Windows Runtime Service Inbound TCP 443 or similar and click Finish.

This concludes the Windows Firewall configuration requirements for the NWRS. You may wish to visit:
- NetSpeek Windows Runtime Service Installation Guide for Individual Devices
- NetSpeek Windows Runtime Service Integration Guide
Support
If you run into any issues during onboarding or have questions, contact NetSpeek Support at support@netspeek.com.